Transfer-Encoding: | chunked |
X-Cache-Hits: | 0, 0 |
x-xss-protection: | 1; mode=block |
x-content-type-options: | nosniff |
etag: | W/"ed6c3108fb1b7d663261ba9aac765bec" |
x-ua-compatible: | IE=Edge,chrome=1 |
cache-control: | no-store, max-age=0, private, must-revalidate |
Date: | Tue, 24 Jul 2018 10:54:47 GMT |
referrer-policy: | same-origin |
Accept-Ranges: | bytes, bytes, bytes, bytes |
status: | 200 OK |
X-Cache: | MISS, MISS |
set-cookie: | bev=1532429686_SGFxfTa1LdsrEZDS; domain=.airbnb.fr; path=/; expires=Thu, 23-Jul-2020 10:54:46 GMT; secure, _csrf_token=V4%24.airbnb.fr%24aCQoqoTnWT0%240UrTqtgj540mzpS0ZvyITovFHRhCV2P-ru1b9a-2B0o%3D; domain=.airbnb.fr; path=/; secure, jitney_client_session_id=24d97e32-9df5-49c7-8fb4-5fc11d566ff7; domain=.airbnb.fr; path=/; expires=Wed, 25-Jul-2018 10:54:46 GMT; secure, jitney_client_session_created_at=1532429686; domain=.airbnb.fr; path=/; expires=Wed, 25-Jul-2018 10:54:46 GMT; secure, jitney_client_session_updated_at=1532429686; domain=.airbnb.fr; path=/; expires=Wed, 25-Jul-2018 10:54:46 GMT; secure, _user_attributes=%7B%22curr%22%3A%22EUR%22%2C%22guest_exchange%22%3A0.85373%2C%22device_profiling_session_id%22%3A%221532429687--507b236ef4a0d1a3c3d86b1e%22%2C%22giftcard_profiling_session_id%22%3A%221532429687--03ad11349e4c4ac53d67b79b%22%2C%22reservation_profiling_session_id%22%3A%221532429687--a96b2ddca8f928e8878e9f5a%22%7D; domain=.airbnb.fr; path=/; expires=Fri, 24-Jul-2020 10:54:47 GMT; secure, flags=268697600; domain=.airbnb.fr; path=/; secure, __svt=1275, 9b88d9e4f=treatment; expires=Sat, 22 Sep 2018 10:54:47 GMT; domain=.airbnb.fr; path=/, 3b689aa21=control; expires=Sat, 22 Sep 2018 10:54:47 GMT; domain=.airbnb.fr; path=/ |
Age: | 0, 0, 0, 0 |
Strict-Transport-Security: | max-age=10886400; includeSubdomains |
Server: | nginx |
x-envoy-upstream-service-time: | 1279 |
Connection: | keep-alive |
X-Served-By: | cache-iad2150-IAD, cache-jfk8150-JFK |
link: | ;rel=preload;as=style,;rel=preload;as=style,;rel=preload;as=style,;rel=preload;as=style,;rel=preload;as=font;type=font/woff2;crossorigin=crossorigin,;rel=preload;as=font;type=font/woff2;crossorigin=crossorigin,;rel=preload;as=font;type=font/woff2;crossorigin=crossorigin,;rel=preload;as=script |
Via: | 1.1 varnish, 1.1 varnish |
content-security-policy: | default-src 'self' https: blob:; child-src *; connect-src 'self' https: wss: *.amap.com *.inspectlet.com *.mapbox.com api.map.baidu.com netverify.com *.netverify.com; font-src 'self' data: *.muscache.com fonts.gstatic.com use.typekit.net; img-src 'self' https: data: *.inspectlet.com *.mapbox.com *.gstatic.com; media-src 'self' https: blob:; script-src 'self' 'unsafe-eval' a0.muscache.com cdn.siftscience.com ss.musthird.com t1.musthird.com bat.bing.com connect.facebook.net www.google-analytics.com www.googleadservices.com tpc.googlesyndication.com www.googletagmanager.com a.cdn.intentmedia.net maps.googleapis.com ajax.googleapis.com *.g.doubleclick.net app.link cdn.branch.io bam.nr-data.net js-agent.newrelic.com sslwidget.criteo.com static.criteo.net dis.criteo.com widget.us.criteo.com *.gbc.criteo.net ethn.io s.yimg.jp api.geetest.com blob: webapi.amap.com restapi.amap.com *.inspectlet.com 'nonce-9b8e6385b629292e907baa570bb882' *.mapbox.com *.google.com *.gstatic.com api.map.baidu.com netverify.com *.netverify.com icm.aexp-static.com qicm.americanexpress.com qwww435.americanexpress.com checkout.americanexpress.com www.paypalobjects.com 'sha256-URqFTNitDSE01K1xklErUlKT93/P4FXStf52o8BhcLY=' 'unsafe-inline' 'sha256-11bVsHJNXc3GrgcH8r4ZM9NwAw3ZwUVDm7MIdtgtPOs=' 'sha256-D9Mz5Ys1Opv52C2fjJU4eS9qDZpG9+Ywz5rQPUyxngQ='; style-src 'self' https: 'unsafe-inline' *.mapbox.com; report-uri /tracking/csp?action=show&controller=rooms&report_only=false&req_uuid=3a097d52-5dd9-4ea5-965d-b4bba988fb70&version=934d5677d626580d0e7387e999ee0bd7c38d6c2f |
content-encoding: | gzip |
X-Timer: | S1532429686.343168,VS0,VE1295 |
Vary: | Accept-Encoding |
content-security-policy-report-only: | default-src blob: *; connect-src blob: *; font-src 'self' data: *.muscache.com fonts.gstatic.com use.typekit.net; img-src 'self' https: data: *.inspectlet.com; script-src 'self' 'unsafe-eval' webpack.localhost.airbnb.com jira.airbnb.biz *.g.doubleclick.net cdn.siftscience.com ss.musthird.com t1.musthird.com bat.bing.com connect.facebook.net www.google-analytics.com www.googleadservices.com tpc.googlesyndication.com www.googletagmanager.com maps.googleapis.com ajax.googleapis.com app.link cdn.branch.io bam.nr-data.net js-agent.newrelic.com sslwidget.criteo.com static.criteo.net dis.criteo.com widget.us.criteo.com ethn.io blob: webapi.amap.com restapi.amap.com *.inspectlet.com cdn.ampproject.org/v0.js cdn.ampproject.org/v0/ a.alipayobjects.com gw.alipayobjects.com static.t.agrant.cn t.agrantsem.com ditu.google.com *.muscache.cn *.muscache.com ss.musthird.cn www.google.com www.gstatic.com b92.yahoo.co.jp mc.yandex.ru wcs.naver.net static.matterport.com a.cdn.intentmedia.net s.yimg.jp icm.aexp-static.com checkout.americanexpress.com www.paypalobjects.com smartlock.google.com accounts.google.com 'sha256-URqFTNitDSE01K1xklErUlKT93/P4FXStf52o8BhcLY=' 'unsafe-inline' 'sha256-11bVsHJNXc3GrgcH8r4ZM9NwAw3ZwUVDm7MIdtgtPOs=' 'sha256-D9Mz5Ys1Opv52C2fjJU4eS9qDZpG9+Ywz5rQPUyxngQ='; style-src * blob: 'unsafe-inline'; report-uri /tracking/csp?action=show&controller=rooms&report_only=true&req_uuid=3a097d52-5dd9-4ea5-965d-b4bba988fb70&version=934d5677d626580d0e7387e999ee0bd7c38d6c2f |
server-timing: | total;dur=1275 |
edge-control: | no-store |
x-frame-options: | SAMEORIGIN |
Content-Type: | text/html; charset=utf-8 |